Slashdot Mirror


Schneier On Full Disclosure

Bruce let me know that he's written a piece on ZDNet (original home of the for the Window of Exposure idea is on Counterpane ? ) about the problems of not following full disclosure. Very well written and does a great job of summarizing why full disclosure works. The original piece from Culp @ Microsoft is also available, along with the PowerPoint that they did.

2 of 232 comments (clear)

  1. Re:I am for full disclosure but... by jmauro · · Score: 5, Informative

    This is the vulnerability of our Nuclear Piles

    This is where you can cross the border undetected

    This is how to make a Fake ID?

    Well maybe I didn't say every single tiny little syllable but basically I said em, basicly.

  2. Re:Regardless by rodgerd · · Score: 5, Informative

    You sound suspiciously like someone who doesn't have sufficient experience in the NT world.

    Windows patches and hotfixes are a whole world of pain. SP2 for NT4 erased filesystems. SP6 crippled people running Notes. Hotfixes regularly blow each other away. They're a *mess*, and a good Windows admin will be *very* cautious about applying either hotfixes or service packs for NT/W2K/XP because the QA on them seems to be so low, so often.